Meks Easy Maps
Meks Easy Maps has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2023 and 2025; 1 is fixed and 1 remains unpatched as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 6.4 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (50%). Other recurring categories include Cross-Site Scripting.
1 of the records (50%) have a vendor fix, while 1 remain unpatched. The oldest unresolved one dates back to 2025.
2 independent researchers contributed these findings, one record each. Meks Easy Maps is installed on roughly 800 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.9.7.
CVE-2025-9206Meks Easy Maps <= 2.1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting
Read the full analysisVulnerability Records

Meks Easy Maps
Author
Meks
Meks Easy Maps was originally created as a feature for our Trawell WordPress theme but now it can be used on any WordPress website. With Meks Easy Maps WordPress plugin you can easily assign locations to your posts and categories via Google Map user-friendly interface. The plugin is highly configurable and provides you with the various options for displaying the map. Meks Easy Maps WordPress plugin is created by Meks Features Assign Google Map or Open Street Map locations to your posts and categories Display post location pin above or below your post content Display all posts with locations on the current category template/archive Display category location pin on category template/archive Shortcode to manually display pins with posts or categories on any page Several display settings to fine-tune the map behavior like clustering (pin grouping) and polylines (lines that connects pins) Street view support Live example? You can see Meks Easy Maps live example on our Trawell theme demo website Quick shortcode guide Besides the automatic display of your posts and categories on the map, you can embed your map anywhere on the website by using the predefined [mks_map] shortcode. Use [mks_map type="posts"] to display all your posts with locations on a single map. Use [mks_map type="posts" cat="2"] if you want to display posts from a specific category only (cat parameter represents the category ID). Use [mks_map type="categories"] to display all your categories with locations.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C